Dhamma Path

Privacy Policy

This policy explains how the Dhamma Path Android app (app.dhammapath) handles information.

Owner/operator: the Dhamma Path app publisher · Effective and last updated: · Contact: dhammapathai@gmail.com

Information we handle

Account and profile information

An account is required. You may authenticate using phone-number SMS OTP or Google Sign-In. Firebase Authentication processes the sign-in credential. We store a Firebase user ID (UID), name, phone number or email as applicable, optional profile image URL, language, selected teachers, sign-in method, onboarding state, notification preferences and tokens, platform, app version when available, account status, and created and last-active timestamps.

Features, support, and device data

Why we use information

We use information to authenticate you; provide and secure your account; personalize language, teachers, content, and status features; deliver audio and other content; operate reminders, alarms, daily prayer, messaging, and notifications; answer support requests; prevent abuse; diagnose reliability issues; measure feature use; and improve the service.

Google and Firebase services

Dhamma Path uses Google Sign-In and Firebase services for Authentication, Cloud Firestore database and caching, Cloud Storage, Cloud Functions, Cloud Messaging, Analytics, Remote Config, and App Check abuse protection. These providers process data under their own terms and policies. App Check provider and enforcement behavior can vary by platform and environment; it supplements, but does not replace, authentication, authorization, and Firebase Security Rules. Firebase web configuration values and client code are not treated as secret security boundaries.

Android permissions and device access

You can deny or revoke optional permissions in Android settings, but the related feature may not work.

Sharing and sale

We share information with the Google/Firebase processors described above only as needed to operate the app, and when required for security or law. Dhamma Path does not sell personal data, show advertising, or use unrelated marketing trackers in the current release.

Retention and deletion

Account and feature data is retained while your account is active and as needed to provide the service. Local caches remain until cleared by you or the operating system. Contact correspondence is retained as needed to resolve and document requests. You can request deletion through Profile → Delete Account or the public Delete Account page. Verified requests are reviewed and processed within 30 days.

Deletion normally removes the Firebase Authentication account, user profile, alarm records, notification tokens in the profile, and files under the user-owned Storage path. Minimal deletion proof, security and audit records, legally required records, aggregated or de-identified analytics, and support correspondence may be retained only as needed for those purposes and then limited or removed according to operational or legal requirements.

Security and your choices

We use Firebase Authentication, authorization checks, Security Rules, role-restricted administrative tools, transport encryption, and abuse-protection controls. No system is completely secure. You may manage notification and device permissions, clear local data, update profile choices, contact us about your data, or request account deletion. Never send passwords, OTP codes, private keys, service-account files, or payment credentials.

Policy updates

We may update this policy when the app or its data handling changes. We will revise the date above and provide notice in the app or through another appropriate channel when a change is material.

Contact

For privacy questions or requests, see Contact or email dhammapathai@gmail.com. Also review the Terms and Conditions.